Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2004-1338

The triggers in Oracle 9i and 10g allow local users to gain privileges by using a sequence of partially privileged actions: using CCBKAPPLROWTRIG or EXEC_CBK_FN_DML to add arbitrary functions to the SDO_CMT_DBK_FN_TABLE and SDO_CMT_CBK_DML_TABLE, then performing a DELETE on the SDO_TXN_IDX_INSERTS table, which causes the SDO_CMT_CBK_TRIG trigger to execute the user-supplied functions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 53.1%
CVSS Severity
CVSS v2 Score 6.5
Products affected by CVE-2004-1338
  • Oracle » Database Server » Version: 10.2.1
    cpe:2.3:a:oracle:database_server:10.2.1
  • Oracle » Oracle9i » Version: 9.0
    cpe:2.3:a:oracle:oracle9i:9.0
  • Oracle » Oracle9i » Version: 9.0.1
    cpe:2.3:a:oracle:oracle9i:9.0.1
  • Oracle » Oracle9i » Version: 9.0.1.2
    cpe:2.3:a:oracle:oracle9i:9.0.1.2
  • Oracle » Oracle9i » Version: 9.0.1.3
    cpe:2.3:a:oracle:oracle9i:9.0.1.3
  • Oracle » Oracle9i » Version: 9.0.1.4
    cpe:2.3:a:oracle:oracle9i:9.0.1.4
  • Oracle » Oracle9i » Version: 9.0.2
    cpe:2.3:a:oracle:oracle9i:9.0.2
  • Oracle » Oracle9i » Version: 9.0.2.0.0
    cpe:2.3:a:oracle:oracle9i:9.0.2.0.0
  • Oracle » Oracle9i » Version: 9.0.2.0.1
    cpe:2.3:a:oracle:oracle9i:9.0.2.0.1
  • Oracle » Oracle9i » Version: 9.0.2.1
    cpe:2.3:a:oracle:oracle9i:9.0.2.1
  • Oracle » Oracle9i » Version: 9.0.2.2
    cpe:2.3:a:oracle:oracle9i:9.0.2.2
  • Oracle » Oracle9i » Version: 9.0.2.3
    cpe:2.3:a:oracle:oracle9i:9.0.2.3
  • Oracle » Oracle9i » Version: 9.2.0.1
    cpe:2.3:a:oracle:oracle9i:9.2.0.1
  • Oracle » Oracle9i » Version: 9.2.0.2
    cpe:2.3:a:oracle:oracle9i:9.2.0.2


Contact Us

Shodan ® - All rights reserved